To create new deployment rules for automatic deployment

  1. From the left navigation panel, click the Policy view.
  2. Click Deployment Policy > Software Deployment.
  3. From the top toolbar, click Clone Above or Clone Below.

    The Clone Rule window opens.

  4. Configure the rule.
    • Enter the rule name

    • Select the groups to which the rule applies.

      Mixed groups (that include both Windows OS and macOS objects) intersect only with the applicable members in each rule.

    • Select the applicable parts of the organization.

    • Select the affected devices.

  5. Click OK to create the new rule.
  6. Click the new rule to select it.
  7. In the right section Capabilities & Exclusions:
    1. Click Windows, macOS or Linux.

    2. (Optional) For Windows and Linux, to automatically upgrade the endpoint client to the latest version, turn on the Automatic Client Update toggle. For more information, see Installation and Upgrade Settings.

    3. Select the Version.

      Note:

      If you enabled the Automatic Client Update option, the version is automatically set to Latest.

      For Linux, click distros to view the supported distributable and version. For example, CentOS or Ubuntu.

      Note:

      You can use the Do not install option to temporarily halt enforcing software deployment rules to the endpoints, for example, during maintenance or internal testing of Endpoint Security client.

    4. Select Capabilities.

      • For Linux, only the Anti-Malware blade is supported with the exported package.

        Note:

        If the Endpoint Security Anti-Malware capability is installed, the third-party Anti-Malware status in the Endpoint Security client is not displayed.

      • For general limitations on macOS, see sk110975.

  8. Configure the deployment settings.
    1. Select the applicable package version.

      CAUTION:

      The Endpoint Security client package version must match the client package version selected in the exported package. Otherwise, the system discards the capabilities selected in the Software Deployment rule.

    2. Select the package capabilities.

  9. Click Save.
  10. Above the right section Capabilities & Exclusions, click Install Policy.